Malware

MSIL/Surveyer.GP removal guide

Malware Removal

The MSIL/Surveyer.GP is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/Surveyer.GP virus can do?

  • Network activity detected but not expressed in API logs

How to determine MSIL/Surveyer.GP?


File Info:

crc32: 258919AF
md5: ea943f0287b6f359343d766330f3d32c
name: EA943F0287B6F359343D766330F3D32C.mlw
sha1: cbe04b359beda5d2cff2a149c9ca7a39b1184c52
sha256: 37dd90a0f1f7f9564e652733ff549c4c801cfa331f45c0a1895f5a7af6da32bb
sha512: f4be6b73eb025b42f0615d0b5266635b4fc89758ea41b1dadcc3a36720e5f802e6abbc6bd2fed6cf831eb5b00a670c3b21ccfcf0cf90c9d5b28682cd062f69d2
ssdeep: 6144:4xBPoAsfbWW3wsfb/W3wsfb+W3wsfbuW3wsfbWW3wsfbbHa4g++Yflo9wsfbxo:4xRoQWNWYWgWQWNHaXIp
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2018
Assembly Version: 1.0.0.0
InternalName: MLB The Show 17.exe
FileVersion: 1.0.0.0
ProductName: InstalatorMultiLanguage
ProductVersion: 1.0.0.0
FileDescription: InstalatorMultiLanguage
OriginalFilename: MLB The Show 17.exe

MSIL/Surveyer.GP also known as:

LionicTrojan.Win32.Surveyer.4!c
DrWebTrojan.Surveyer.215
ALYacTrojan.GenericKD.43496479
CylanceUnsafe
SangforTrojan.MSIL.GP.ed
AlibabaTrojan:MSIL/Surveyer.bc33ee9d
K7GWTrojan ( 00546e2f1 )
K7AntiVirusTrojan ( 00546e2f1 )
CyrenW32/Trojan.CEZ.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Surveyer.GP
APEXMalicious
AvastWin32:Malware-gen
BitDefenderTrojan.GenericKD.43496479
MicroWorld-eScanTrojan.GenericKD.43496479
Ad-AwareTrojan.GenericKD.43496479
SophosMal/Generic-S
ComodoMalware@#2e9amxzqokwke
BitDefenderThetaGen:NN.ZemsilF.34294.Vq0@auLObVk
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R002C0PKK21
McAfee-GW-EditionRDN/Generic.dx
FireEyeTrojan.GenericKD.43496479
EmsisoftTrojan.GenericKD.43496479 (B)
SentinelOneStatic AI – Suspicious PE
eGambitUnsafe.AI_Score_84%
MicrosoftBackdoor:Win32/Bladabindi!ml
GDataTrojan.GenericKD.43496479
McAfeeRDN/Generic.dx
TrendMicro-HouseCallTROJ_GEN.R002C0PKK21
YandexTrojan.Surveyer!kiS2b3VAkMs
IkarusTrojan.MSIL.Surveyer
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Surveyer.GP!tr
AVGWin32:Malware-gen

How to remove MSIL/Surveyer.GP?

MSIL/Surveyer.GP removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment